İçeriğe atla
Noroxi

CWE-270 · 22 kayıt

Privilege Context Switching Error

Bu sınıftaki CVE’ler

22 kayıt

  • CVE-2021-3493
    76Bu hafta

    The overlayfs implementation in the linux kernel did not properly validate with respect to user namespaces the setting of file capabilities

    YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %49

    canonical · ubuntu linux17 Nis 2021

  • CVE-2023-25754
    40Planlayın

    Apache Airflow: Privilege escalation using airflow logs

    KritikCVSS 9,8İstismar yokEPSS %2

    apache · airflow8 May 2023

  • CVE-2023-37912
    35İzleyin

    XWiki Rendering's footnote macro vulnerable to privilege escalation via the footnote macro

    YüksekCVSS 8,8İstismar yokEPSS %1

    xwiki · xwiki-rendering25 Eki 2023

  • CVE-2024-8641
    35İzleyin

    Privilege Context Switching Error in GitLab

    YüksekCVSS 8,8İstismar yokEPSS %0

    gitlab · gitlab12 Eyl 2024

  • CVE-2024-36513
    35İzleyin

    A privilege context switching error vulnerability [CWE-270] in FortiClient Windows version 7.2.4 and below, version 7.0.12 and below, 6.4 al

    YüksekCVSS 8,8İstismar yokEPSS %0

    fortinet · forticlient12 Kas 2024

  • CVE-2024-11263
    33İzleyin

    arch: riscv: userspace: potential security risk when CONFIG_RISCV_GP=y

    YüksekCVSS 8,4İstismar yokEPSS %0

    zephyrproject · zephyr15 Kas 2024

  • CVE-2025-9408
    32İzleyin

    Userspace privilege escalation vulnerability on Cortex M

    YüksekCVSS 8,1İstismar yokEPSS %0

    zephyrproject-rtos · zephyr11 Kas 2025

  • CVE-2017-2663
    31İzleyin

    It was found that subscription-manager's DBus interface before 1.19.4 let unprivileged user access the com.redhat.RHSM1.Facts.GetFacts and c

    YüksekCVSS 7,8İstismar yokEPSS %0

    redhat · subscription-manager27 Tem 2018

  • CVE-2025-60721
    31İzleyin

    Windows Administrator Protection Elevation of Privilege Vulnerability

    YüksekCVSS 7,8İstismar yokEPSS %0

    microsoft · windows 11 24h211 Kas 2025

  • CVE-2024-46975
    31İzleyin

    GPU DDK - rgxfw_write_robustness_buffer allows arbitrary catreg set mapping

    YüksekCVSS 7,9İstismar yokEPSS %0

    imagination technologies · graphics ddk22 Şub 2025

  • CVE-2026-34853
    30İzleyin

    Permission bypass vulnerability in the LBS module.

    YüksekCVSS 7,5İstismar yokEPSS %0

    huawei · harmonyos13 Nis 2026

  • CVE-2020-7019
    26İzleyin

    In Elasticsearch before 7.9.0 and 6.8.12 a field disclosure flaw was found when running a scrolling search with Field Level Security.

    OrtaCVSS 6,5İstismar yokEPSS %1

    elastic · elasticsearch18 Ağu 2020

  • CVE-2024-12570
    26İzleyin

    Privilege Context Switching Error in GitLab

    OrtaCVSS 6,7İstismar yokEPSS %0

    gitlab · gitlab12 Ara 2024

  • CVE-2025-26499
    24İzleyin

    Under heavy system utilization a random race condition can occur during authentication or token refresh operation.

    OrtaCVSS 6,0İstismar yokEPSS %0

    wind river studio developer · wind river studio developer11 Eyl 2025

  • CVE-2024-37294
    22İzleyin

    Aimeos denial of service vulnerability in SaaS and marketplace setups

    OrtaCVSS 5,5İstismar yokEPSS %0

    aimeos · aimeos-core11 Haz 2024

  • CVE-2024-47173
    22İzleyin

    Aimeos GraphQL API admin interface denial of service vulnerability in SaaS and marketplace setups

    OrtaCVSS 5,5İstismar yokEPSS %0

    aimeos · ai-admin-graphql24 Eki 2024

  • CVE-2025-46406
    22İzleyin

    A Privilege Context Switching Error (CWE-270) in the Command Center Server could allow a privileged Operator with high level access in one D

    OrtaCVSS 5,6İstismar yokEPSS %0

    gallagher · command centre server9 Tem 2025

  • CVE-2020-1719
    21İzleyin

    A flaw was found in wildfly.

    OrtaCVSS 5,4İstismar yokEPSS %1

    redhat · wildfly7 Haz 2021

  • CVE-2024-51987
    21İzleyin

    HTTP Client uses incorrect token after refresh in Duende.AccessTokenManagement.OpenIdConnect

    OrtaCVSS 5,4İstismar yokEPSS %0

    duendesoftware · duende.accesstokenmanagement7 Kas 2024

  • CVE-2025-49583
    20İzleyin

    XWiki provides no warning when granting XWiki.Notifications.Code.NotificationEmailRendererClass admin right

    OrtaCVSS 5,1İstismar yokEPSS %0

    xwiki · xwiki13 Haz 2025

  • CVE-2020-7020
    12İzleyin

    Elasticsearch versions before 6.8.13 and 7.9.2 contain a document disclosure flaw when Document or Field Level Security is used.

    DüşükCVSS 3,1İstismar yokEPSS %1

    elastic · elasticsearch22 Eki 2020

  • FreePBX API has a Privilege Escalation Error in GraphQL Allowing Authenticated Users to Access Additional Scopes

    DüşükCVSS 2,0İstismar yokEPSS %0

    sangoma · freepbx12 Şub 2026

Tüm zafiyet sınıfları